The CRISC certification prep path will provide you with a comprehensive overview of the cybersecurity principles and security best practices needed to pass the CRISC certification exam.
Learners at 96% of Fortune 1000 companies trust Cybrary
ISACA’s Certified in Risk and Information Systems Control (CRISC) certification is for IT and business professionals who develop and maintain information system controls while identifying and evaluating risk and its impact on the organization. Earning this certification demonstrates that you understand how to design and implement effective risk management strategies that align with business goals, helping organizations mitigate threats and maintain compliance.
The CRISC exam will test your knowledge of four major risk management domains outlined by ISACA, including:
The Leadership and Management Career Path is expected to release in Q2 of 2025. Sign up now to explore our other leadership courses and content.
Start Learning for FreeLearn core concepts and get hands-on with key skills.
In this CRISC: Intro to Information Security and Risk Management course, you will meet senior instructor Kelly Handerhan and review risk definitions and principles of information security.
In this CRISC: Corporate IT Governance course, you will learn about information security strategy, policies, and controls and ISACA's IT Risk Framework.
In this CRISC: IT Risk Assessment course, you will learn about threat modeling and risk scenarios, risk assessment and analysis, and cost-benefit analysis and ROI.
In this CRISC: Risk Response & Reporting course, you will learn about risk acceptance, mitigation, avoidance, sharing, and transfer, information security program stakeholders, and control design.
In this CRISC: Information Technology & Security course, you will learn about mitigating external and internal risks, vulnerability assessment, penetration testing, cloud integration, and business continuity and disaster recovery.
Exercise your problem-solving and creative thinking skills with security-centric puzzles
In this hands-on lab, you will learn the basics of access control, including different types of access control. You will practice using Windows Security Permissions and icacls to manage and verify and access control.
In this hands-on lab, you will learn the basics of vulnerability scanners, including basic functionality and practical applications. You will practice configuring and analyzing scans using the OpenVAS vulnerability scanner.
In this hands-on lab, you will learn the basics of data backup and recovery, including different types of backups. You will practice using Windows Server Backup to create a data backup and recover files from a data backup.
In this hands-on lab, you will learn the basics of vulnerability scanners, including basic functionality and practical applications. You will practice configuring and analyzing scans using the OpenVAS vulnerability scanner
In this hands-on lab, you will learn the basics of antivirus software. You will practice using Windows Defender Antivirus to detect and remove malware from a Windows system.
Assess your knowledge and skills to identify areas for improvement and measure your growth
Demonstrate your expertise in identifying and managing IT risk within an enterprise and in implementing and maintaining information systems controls. This practice exam from CyberVista helps learners prepare for ISACA's Certified in Risk and Information Systems Control (CRISC) certification.
Cybrary’s expert-led cybersecurity courses help your team remediate skill gaps and get up-to-date on certifications. Utilize Cybrary to stay ahead of emerging threats and provide team members with clarity on how to learn, grow, and advance their careers within your organization.
Put your skills to the test in virtual labs, challenges, and simulated environments.
Track your skills development from lesson to lesson using the Cybrary Skills Tracker.
Connect with peers and mentors through our supportive community of cybersecurity professionals.